ID

VAR-E-201004-0206


EDB ID

12298


TITLE

Huawei EchoLife HG520 - Remote Information Disclosure - Hardware remote Exploit

Trust: 0.6

sources: EXPLOIT-DB: 12298

DESCRIPTION

Huawei EchoLife HG520 - Remote Information Disclosure. CVE-63990 . remote exploit for Hardware platform

Trust: 0.6

sources: EXPLOIT-DB: 12298

AFFECTED PRODUCTS

vendor:huaweimodel:echolife hg520scope: - version: -

Trust: 1.6

sources: EXPLOIT-DB: 12298 // EDBNET: 35854

EXPLOIT

# Exploit Title: Huawei EchoLife HG520 Remote Information Disclosure
# Date: 2010-04-19
# Author: hkm
# Product Link: http://www.huawei.com/mobileweb/en/products/view.do?id=660
# Firmware Versions: 3.10.18.7-1.0.7.0
# 3.10.18.5-1.0.7.0
# 3.10.18.4
# Software Versions: V100R001B120Telmex
# V100R001B121Telmex
# Exploit Download Link:
# http://www.hakim.ws/huawei/HG520_udpinfo.tar.gz
# https://github.com/offensive-security/exploitdb-bin-sploits/raw/master/bin-sploits/12298.tar.gz (HG520_udpinfo.tar.gz)

By sending a specially crafted UDP packet you can remotely obtain the
following information: software and firmware versions, MAC, local and
remote IP, model and PPPoE credentials in clear text.

The files required to reproduce this vulnerability can be downloaded
from:

http://www.hakim.ws/huawei/HG520_udpinfo.tar.gz

Requires Python, Scapy and Tcpdump. The way you run this program to test
a local modem is:

~# python udp520.py

For a remote modem:

~# python udp520.py <remoteIP>

* If you can't see the response packet, try using Wireshark.
* If "No module named all" error shows up, install scapy from source.

hkm

hkm@hakim.ws

[ Comunidad Underground de Mexico - http://www.underground.org.mx ]

Trust: 1.0

sources: EXPLOIT-DB: 12298

EXPLOIT LANGUAGE

txt

Trust: 0.6

sources: EXPLOIT-DB: 12298

PRICE

free

Trust: 0.6

sources: EXPLOIT-DB: 12298

TYPE

Remote Information Disclosure

Trust: 1.6

sources: EXPLOIT-DB: 12298 // EDBNET: 35854

CREDITS

hkm

Trust: 0.6

sources: EXPLOIT-DB: 12298

EXTERNAL IDS

db:EXPLOIT-DBid:12298

Trust: 1.6

db:EDBNETid:35854

Trust: 0.6

sources: EXPLOIT-DB: 12298 // EDBNET: 35854

REFERENCES

url:https://www.exploit-db.com/exploits/12298/

Trust: 0.6

sources: EDBNET: 35854

SOURCES

db:EXPLOIT-DBid:12298
db:EDBNETid:35854

LAST UPDATE DATE

2022-07-27T09:45:45.910000+00:00


SOURCES RELEASE DATE

db:EXPLOIT-DBid:12298date:2010-04-19T00:00:00
db:EDBNETid:35854date:2010-04-19T00:00:00